Malware

Zusy.359542 removal

Malware Removal

The Zusy.359542 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Zusy.359542 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Unconventionial binary language: Russian
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Zusy.359542?


File Info:

name: CC6196802C84445B234E.mlw
path: /opt/CAPEv2/storage/binaries/3332fb34546362dfa859466ef8b3838b03652399c0fc957bb7eafb4cc41907af
crc32: CCF81290
md5: cc6196802c84445b234e9e6dc221cbd6
sha1: 9bda5ba2e8950a6ec3f7dc88f4f433c977e11f64
sha256: 3332fb34546362dfa859466ef8b3838b03652399c0fc957bb7eafb4cc41907af
sha512: dc644418212b1fa5639ce9386f0b5926d8539cf3234f9eafdbc222167a1ffe93e3dc925ac7d4449ad26e3b619d960f90451b264b354216660c7ce0ef36d91bc2
ssdeep: 3072:o6dUwZLqFpOmAS+QowN+2oNmHD9Egg3H6:GwZtQowNwahpg3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T134C3F11736B0D437C997D5BC68AE8B9A50217A328F1F684083C33F9CE95FAC9A561C52
sha3_384: 9f1ebf2ec8f3898b72031538be62bcf777e5645cbdb9a321f8d59332595ebb4249e83c228188b0cc2679345613bf9326
ep_bytes: 558bec83c4ccff359c864300e8f12000
timestamp: 2009-11-16 17:26:50

Version Info:

Comments:
CompanyName: ComponentOne LLC
FileDescription: Dr.Web for Windows 2z 2011
FileVersion: 5.0.572.1152
InternalName: Dr.Web for Windows
LegalCopyright: Copyright (C) DoctorWeb, Ltd., 1992-2011
LegalTrademarks:
OriginalFilename: FileProtectorz v2011 jK.exe
ProductName: Dr.Web for Windows vv
ProductVersion: 5.0.572.1152
Translation: 0x0419 0x04e3

Zusy.359542 also known as:

BkavW32.AIDetectMalware
LionicHacktool.Win32.Krap.llG4
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.359542
FireEyeGeneric.mg.cc6196802c84445b
CAT-QuickHealTrojan.Renos.LX
SkyhighBehavesLike.Win32.Sality.cc
ALYacGen:Variant.Zusy.359542
MalwarebytesTrojan.Agent
VIPREGen:Variant.Zusy.359542
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 002056d81 )
BitDefenderGen:Variant.Zusy.359542
K7GWTrojan ( 002056d81 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.36792.hq0@aaArXqei
VirITTrojan.Win32.Gen.CDPL
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.FakeAlert.AQI
APEXMalicious
ClamAVWin.Trojan.Agent-265025
KasperskyPacked.Win32.Krap.ih
AlibabaMalware:Win32/km_248ac.None
NANO-AntivirusTrojan.Win32.FakeAV.btxyx
ViRobotTrojan.Win32.Krap.125952.BK
RisingDownloader.Renos!8.1D0 (TFE:2:t2wNFBF1lKG)
TACHYONTrojan/W32.Krap.125952.BA
SophosMal/FakeAV-IZ
F-SecureTrojan.TR/Crypt.XPACK.Gen3
DrWebTrojan.DownLoader1.45251
ZillyaTrojan.FakeAV.Win32.45606
TrendMicroTROJ_FAKEAV.SM1C
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Zusy.359542 (B)
IkarusTrojan-Downloader.Win32.CodecPack
JiangminPacked.Krap.dsek
WebrootW32.Rogue.Gen
GoogleDetected
AviraTR/Crypt.XPACK.Gen3
VaristW32/FakeAlert.KQ.gen!Eldorado
Antiy-AVLTrojan[Packed]/Win32.Krap
KingsoftWin32.Troj.Undef.a
MicrosoftTrojanDownloader:Win32/Renos.PT
XcitiumTrojWare.Win32.Kryptik.VL@2qgufe
ArcabitTrojan.Zusy.D57C76
ZoneAlarmPacked.Win32.Krap.ih
GDataGen:Variant.Zusy.359542
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.FakeAV.R2867
Acronissuspicious
McAfeeDownloader-CEW.x
MAXmalware (ai score=100)
DeepInstinctMALICIOUS
VBA32BScope.TrojanPSW.Stealer
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_FAKEAV.SM1C
TencentMalware.Win32.Gencirc.10b6f63e
YandexTrojan.DL.FakeAlert!QJL3mmq+56I
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.1666991.susgen
FortinetW32/Krypt.QKV!tr
AVGWin32:MalOb-EM [Cryp]
Cybereasonmalicious.2e8950
AvastWin32:MalOb-EM [Cryp]

How to remove Zusy.359542?

Zusy.359542 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment